VPN: can't get WireGuard & AdGuard working
-
First of all: thanks @girish for the new VPN app!!!
I immediately (to be sure) deleted the OVPN app and installed a fresh new VPN app.
Here my findings:
- In the settings added my AdGuard DNS server ip (same as the Cloudron IP where also the VPN app is installed)
- Created a profile and installed the WireGuard profile in the WireGuard app on my iPhone
- Switched the VPN tunnel on and .... connection is there (according to the VPN app info) but no traffic
- In AdGuard I do see this kind of incoming requests:
lb._dns-sd._udp.6.0.0.192.in-addr.arpa
but no "normal" DNS requests - In AdGuard the following User IP's are allowed:
10.8.0.0/24, 172.18.0.0/24, my ISP IP, my Cloudron IP, 10.9.0.0/24
- Also the connected IP to AdGuard is the IP where my iPhone is connected to (in this case my home ISP), so not the WireGuard server IP or the local network IP, this is very strange IMHO.
I'm curious for what I'm doing wrong?
(edited: I'm on Cloudron 8.1.0 is that a RC?) -
IIRC, I have tried this before and it has not worked in the past. The devices are unable to reach the DNS via the tunnel, not sure why. I think you will notice that if you use some other public DNS, that works... I will investigate this at some point.
-
Before with only OpenVPN it did work, so itโs probably something with routing?
-
@imc67 good point, didn't realize. indeed, I did a quick test. even now, it works even now with OpenVPN. Just not in WireGuard.
Curiously, after I connect to WireGuard, I can ping just fine (ICMP) but cannot make DNS requests. Puzzling.
-
mh...seems to be a firewall problem. When I allow "any IP" (TCP and UDP) on Hetzner-Firewall it works flawlessly... adding the Cloudron IP to the firewall doesn't work....Any idea anybody? -
N nebulon marked this topic as a question on
-
N nebulon has marked this topic as solved on